On 01/18/2013 03:11 AM, Endi Sukma Dewata wrote:
On 1/17/2013 8:01 PM, Petr Vobornik wrote:
On 01/17/2013 04:24 AM, Endi Sukma Dewata wrote:
Nice work! They seem to be working fine so it's ACKed.
I found a little error - there is a jsl problem in dojo.profile:86 -
comma at the end of a list.
How this works:
1. When a trusted domain user is tested, AD GC is searched
for the user entry Distinguished Name
2. The user entry is then read from AD GC and its SID and SIDs
of all its assigned groups (tokenGroups attribute) are retrieved
3. The SIDs are then used to search IPA
On 01/17/2013 04:15 PM, Rob Crittenden wrote:
Martin Kosek wrote:
Give a clear message about what is wrong with current Trust settings
before letting AD to return a confusing error message.
https://fedorahosted.org/freeipa/ticket/3193
I hate being picky over wording but...
I think it would